How to remove A0320794.exe
- File Details
- Overview
- Analysis
A0320794.exe
The module A0320794.exe has been detected as PUP.MailRu
File Details
Product Name: |
|
Company Name: |
|
MD5: |
f345e095c2f8eaf8a3dbe44fe3d054f8 |
Size: |
1 MB |
First Published: |
2017-05-29 22:07:39 (7 years ago) |
Latest Published: |
2018-11-11 20:05:12 (6 years ago) |
Status: |
PUP.MailRu (on last analysis) |
|
Analysis Date: |
2018-11-11 20:05:12 (6 years ago) |
Overview
%sysdrive%\дом-пк\backup set 2014-02-23 190021\backup files 2014-03-16 190001\backup files 2.zip\c\users\дом\appdata\local |
%localappdata% |
%sysdrive%\winctrl-1n6iicr\backup set 2014-02-23 190005\backup files 2014-03-16 190021\backup files 3.zip\c\users\кирилл\appdata\local |
%sysdrive%\system volume information\_restore{4eab92ee-e966-4d87-9a2b-92c35fc5a3a0} |
%sysdrive%\admin\local settings\application data |
%sysdrive%\саша-пк\backup set 2014-03-09 190004\backup files 2014-03-16 190004\backup files 2.zip\c\users\саша\appdata\local |
MailRuUpdater.exe |
A0320794.exe |
Windows 7 |
75.0% |
|
Windows 10 |
12.5% |
|
Windows XP |
12.5% |
|
Analysis
Subsystem: |
Windows GUI |
PE Type: |
pe |
OS Bitness: |
32 |
Image Base: |
0x00400000 |
Entry Address: |
0x00080d78 |
Name |
Size of data |
MD5 |
.text |
1408000 |
ca322fab37519685f5862e594b8dfe35 |
.rdata |
204288 |
06ffe3d778d1b0e3edde6d4a816c4b40 |
.data |
34816 |
1b8ab5dc36e4d292be4d2f8bac204347 |
.tls |
512 |
bf619eac0cdf3f68d496ea9344137e8b |
.rsrc |
27136 |
63724f00ace8fa245336977a6f6c4961 |
.reloc |
80384 |
09f6bfa6500c9942f6d08045b813b092 |